- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello everybody,
In attached, the network design. We have to put the 3200 appliance into Main Site Network.
Main site is interconnected to branch offices through interco router (no internet on this router) and each branch office has his owvn internet connexion. Branch offices can also access to the servers in Main Site LAN.
Into Main Site LAN, servers can only use the interconnexion link to go to the branch offices and get to internet through ADSL Router. The others hosts can only use FC Router to get to Internet.
So my questions are :
1) What is the best position to put the checkpoint ?
2) In this case, what will be different modifications to do and the routing config options on the checkpoint ?
NB : I specify that the switch is unmanaged.
Thank for your help.
Is there a specific reason for the 2 different internet connections?
In this case I would just put the 3200 with 2 ports to the 2 internet routers and setup ISP redundancy.
Add one connection from the 3200 to the Interco router and set all machines to use that router as the default route.
On the Interco router add a default route towards the 3200 and you're all set.
Hi Maarten,
Thank You !!!
We have to protect only the Main Site LAN from the Internet and also from the Interco link (because all the branch offices have their own Internet and they can access to Main Site LAN).
The reason for the 2 differents internet connections is that the config are made in such a way that only servers can use the Interco and get access to Internet through ADSL Router. The other hosts don't access the this interco and can access to the Internet directly through FC Router.
So I don't know if ISP redundancy can be use in this case.

then this would be the preferred way to go, however, do keep in mind that your servers will from that point on use the botom internet connection, the lower cloud is internet, the upper cloud is Interco connections.
Hi Maarten,
Many thanks !!!
I got best understanding with this diagram.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 19 | |
| 17 | |
| 13 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY